Adobe addressed critical flaws in Media Encoder and Illustrator products
Vulnerabilities mentionedAll →
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2019-8246 | Adobe Media Encoder versions 13.1 and earlier have an out-of-bounds write vulnerability. Adobe Media Encoder versions 13.1 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution . NVD description · AI analysis pending | 9.8 | 5% |
| — | ||
| CVE-2019-8247 +1 in the same advisory: …8248 | Adobe Illustrator CC versions 23.1 and earlier have a memory corruption vulnerability. Adobe Illustrator CC versions 23.1 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution . NVD description · AI analysis pending | 9.8 | 4% |
| — |
Full article231 words · extracted from securityaffairs.com · click to collapse
Pierluigi Paganini
November 13, 2019

Adobe patch Tuesday updates addressed a total of 11 vulnerabilities affecting its Animate, Illustrator, Media Encoder and Bridge products.
Adobe patch Tuesday updates addressed a total of 11 flaws affecting its Animate, Illustrator, Media Encoder and Bridge products.
“Adobe has published security bulletins for Adobe Animate CC (APSB19-34), Adobe Illustrator CC (APSB19-36), Adobe Media Encoder (APSB19-52) and Adobe Bridge CC (APSB19-53). Adobe recommends users update their product installations to the latest versions using the instructions referenced in the bulletin.” reads the advisory published by Adobe.
The good news is that all the vulnerabilities fixed by Adobe are unlikely to be exploited, the company also confirmed that it is not aware of attacks in the wild exploiting them.
5 out of 11 vulnerabilities addressed by Adobe have been rated as critical:
Adobe Media Encoder
- CVE-2019-8246 – Out-of-bounds Write issue that could lead to arbitrary code execution on Windows and macOS
Adobe Illustrator CC
- CVE-2019-8247 is a memory corruption issue that could lead to arbitrary code execution on Windows and macOS.
- CVE-2019-8248 is a memory corruption issue that could lead to arbitrary code execution on Windows and macOS
Adobe credited independent researchers from NSFOCUS, Qihoo 360 and Fortinet for reporting the vulnerabilities.
| [adrotate banner=”9″] | [adrotate banner=”12″] |
(SecurityAffairs – Adobe Patch Tuesday updates, hacking)
[adrotate banner=”5″]
[adrotate banner=”13″]
Text extracted automatically; images, tables and formatting may be missing. Original: https://securityaffairs.com/93807/security/adobe-patch-tuesday-nov-19.html